5
CVSSv2

CVE-2006-3207

Published: 24/06/2006 Updated: 18/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Directory traversal vulnerability in newpost.php in Ultimate PHP Board (UPB) 1.9.6 and previous versions allows remote malicious users to overwrite arbitrary files via a .. (dot dot) sequence and trailing null (%00) byte in the id parameter, as demonstrated by injecting a Perl CGI script using "[NR]" sequences in the message parameter, then calling close.php with modified id and t_id parameters to chmod the script. NOTE: this issue might be resultant from dynamic variable evaluation.

Vulnerable Product Search on Vulmon Subscribe to Product

ultimate php board ultimate php board 1.9

ultimate php board ultimate php board 1.9.6

ultimate php board ultimate php board 1.8

ultimate php board ultimate php board 1.8.2